Bumper Job Opening for SOC – SIEM Admin/L1 in SecurityHQ, Pune, Maharashtra

Hi, Guys

We got a new job opening detail

company name SecurityHQ

location : Pune, Maharashtra

description : Location
Pune, India
Negotiable depending on experience
Additional Desired Skills
Excel, formulation
Documentation and presentation
Quick response on issues and mail with prioritization
Ready to work in 24×7 environment
Education Requirements & Experience
BE/B.Tech – CS/CSE or Equivalent trade, CCNA, Admin Analyst Certification
System Security Certification
CEH will be a plus
Experience Level: 0-3 Years
Job Description
We’re searching for a SIEM Admin to assist our 24×7 managed security operations center. This role is in Security Engineering Department, responsible for the strategic, technical, and operational direction of the Security Engineering. This job description is not intended to be all inclusive; the employee will also perform other reasonably related business/job duties as assigned. SHQ reserves the right to revise job duties and responsibilities as the need arises.
Having good knowledge on SIEM, FIM, IPS, Network devices and TCP/IP model, Ports
and Incident analysis.
Good verbal/written communication skills. • Review of daily health Check: LogRhythm, QRadar and their components.
Data Archiving and backup and data purging as per need and compliance.
Evidence collection for audits and documentation of all activities performed and recorded.
Raising Change management tickets for SOC Admin activities and incidents at ticketing tool.
Helping L2 with required knowledge base details and basic documentations.
Co-ordination with SOC Monitoring team on troubleshooting issues and highlighting it to L2 & L3 for further resolution and escalation.
High ethics, ability to protect confidential information.
Also, creation of active channels, reports, lists, filters, modifying the rules (fair knowledge) and dashboard.
Update and maintain SOC knowledge base for new security incidents and docs.
Creation of daily status report sheet and submit to SOC Admin lead for review.
Troubleshooting non-reporting devices and maintain device status reporting
Troubleshooting issues occurred on daily health check & system notifications
Creating change request tickets for SOC admin activities, issues and incidents.
Essential Skills
Escalation points for SOC Monitoring team.
Experience in SIEM administration and Event flow architecture and different types of logs generated by devices like Windows, Proxy, Network Devices, Database…etc.
Good understanding of Firewall, IDP/IPS, SIEM functioning
Providing Inputs and Assisting to Prepare HLD & LLD
Deep understanding of Windows, DB, Mail cluster, VM and Linux commands.
Knowledge of network protocols TCP/IP and ports.
Team Spirit and working ideas heading to resolution of issues.
Good verbal/written communication skills.
Tools: Good knowledge on: • SIEM (LogRhythm, QRadar, ArcSight)
FIM (TripWire)
Firewall (CheckPoint, Cisco ASA, PA

Leave a Reply

Your email address will not be published. Required fields are marked *

slot gacorhttps://elearning.jgu.ac.id/slot-gacor/https://esartika.pariamankota.go.id/slot88/https://kms.lamongankab.go.id/slot-gacor/http://bala-wera.bimakab.go.id/slot-deposit-pulsa/https://fkip.unigal.ac.id/themes/slot-gacor/https://kodim0812.lamongankab.go.id/slot-deposit-pulsa/slot gacorhttp://tubenow.dothome.co.kr/slot-deposit-pulsa/slot99https://edupedia.online/slot-deposit-pulsa/https://lma.lums.edu.pk/wp-content/uploads/2019/slot-dana/http://www.mafube.fs.gov.za/wp-content/https://service.camt.cmu.ac.th/slot-gacor/https://alumni.law.cuhk.edu.hk/alumni/wp-content/slot-deposit-pulsa/https://designoweb.com/test/slot-shopeepay/https://rajawin303.com/https://bosslot99.com/https://rtprajawins.com/https://rtpbosslot.com/rajawin303bosslot99
slot gacor